Checkmarx Jenkins plugin backdoor
incident · incident:checkmarx-jenkins-ast-plugin-2026
TeamPCP backdoors Checkmarx Jenkins AST plugin version 2026.5.09; SANDCLOCK exfiltrates CI/CD secrets (2026-05-09 to 2026-05-10).
Coverage timeline
0
first 2026-05-12 → last –
no data
Peak priority
—
no matching entries
Sources cited
0
0 hosts
Sections touched
0
—
Co-occurring entities
0
no co-occurrence
ATT&CK techniques
0
no mapped behavior yet
Story timeline
No published entries reference this entity yet.
Relationships explore in graph
Typed, source-stated connections from the entity registry — each edge cites the entry whose reporting establishes it.
attributed to
Entries about Checkmarx Jenkins plugin backdoor
No published entry references this entity yet · entries match by registry key, by the entity's name or a public alias appearing in the entry title or body, or (for CVE entities) by exact CVE id.